FPGA-based Key Generator for the Niederreiter Cryptosystem Using Binary Goppa Codes
FPGA-based Key Generator for the Niederreiter Cryptosystem Using Binary Goppa Codes
复制标题
DOI:
10.1007/978-3-319-66787-4_13
复制
发表时间:
2017-09
期刊:
影响因子:
--
通讯作者:
Wen Wang;Jakub Szefer;R. Niederhagen
中科院分区:
文献类型:
--
作者:
Wen Wang;Jakub Szefer;R. Niederhagen
This paper presents a post-quantum secure, efficient, and tunable FPGA implementation of the key-generation algorithm for the Niederreiter cryptosystem using binary Goppa codes. Our key-generator implementation requires as few as 896,052 cycles to produce both public and private portions of a key, and can achieve an estimated frequency Fmax of over 240 MHz when synthesized for Stratix V FPGAs. To the best of our knowledge, this work is the first hardware-based implementation that works with parameters equivalent to, or exceeding, the recommended 128-bit “post-quantum security” level. The key generator can produce a key pair for parameters,, andin only 3.7 ms when no systemization failure occurs, and inms on average. To achieve such performance, we implemented an optimized and parameterized Gaussian systemizer for matrix systemization, which works for any large-sized matrix over any binary field. Our work also presents an FPGA-based implementation of the Gao-Mateer additive FFT, which only takes about 1000 clock cycles to finish the evaluation of a degree-119 polynomial atdata points. The Verilog HDL code of our key generator is parameterized and partly code-generated using Python and Sage. It can be synthesized for different parameters, not just the ones shown in this paper. We tested the design using a Sage reference implementation, iVerilog simulation, and on real FPGA hardware.